漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
DBRisinajumi d2files D2filesController.php actionDownloadFile sql injection
漏洞信息
A vulnerability has been found in DBRisinajumi d2files and classified as critical. Affected by this vulnerability is the function actionUpload/actionDownloadFile of the file controllers/D2filesController.php. The manipulation leads to sql injection. Upgrading to version 1.0.0 is able to address this issue. The identifier of the patch is b5767f2ec9d0f3cbfda7f13c84740e2179c90574. It is recommended to upgrade the affected component. The identifier VDB-217561 was assigned to this vulnerability.
漏洞信息
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
漏洞
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
漏洞
d2files SQL注入漏洞
漏洞信息
d2files是一个PHP模块。 d2files存在SQL注入漏洞。攻击者利用该漏洞执行sql注入攻击。
漏洞信息
N/A
漏洞
N/A